zlacker

[parent] [thread] 2 comments
1. Athas+(OP)[view] [source] 2022-05-11 11:11:13
> As a sysadmin, I would not want my /bin /sbin exposed to everyone.

Why not? It's not like most of them are suid (right?). Most Unix systems I've used allow any user to peruse /sbin at their leisure and run whatever they want.

replies(1): >>digita+MQ
2. digita+MQ[view] [source] 2022-05-11 15:37:27
>>Athas+(OP)
Apologies if I'm missing your point, but yikes - any user on your system can run /sbin/shutdown?
replies(1): >>Athas+EX
◧◩
3. Athas+EX[view] [source] [discussion] 2022-05-11 16:10:18
>>digita+MQ
Yes of course, just like on more or less any Linux system. But IIRC, shutdown is a suid binary that will do its own permission checks while running. The permissions on the /sbin/ directory should not matter.
[go to top]